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AMENDMENTS TO THE CLAIMS 

Please amend the claims as follows: 

1 . (Currently Amended) An apparatus, comprising: 

a client coupled , via a network, to a plurality of resources and computing tasks , wherein 
said plurality of resources is located on an application server[[s]] located on a 
n e twork ; 

a system in which softwar e applications r e sid e on application s e rv e rs and cli e nts shar e 
and acc e ss th e application e x e cuting on application serv e rs via a n e twork; and 

a system configured to control cli e nt access to said plurality of resources and computing 
tasks on application s e rv e r s, the system including! 

a database configured to store at l e a s t on e policy crit e ria a first license policy 
type, a second license policy type, a first policy instance, and a second 
policy instance, wherein the first policy instance is generated using the 
first license policy type and a first user specific parameter and the second 
policy instance is generated using the second policy type and a second 
user specific parameter associat e d with a us e r , wherein the first user 
specific parameter and the second user specific parameter are associated 
with a same user ; 

a license manager configured to generate a token using the following steps: 
creating a first sub-token using the first policy instance; 
creating a second sub-token using the second policy instance; and 
combining the first sub-token and the second sub-token to generate the 
token, 

according to an allocat e d acc e ss s e ssion bas e d on said at l e ast on e policy 
crit e ria associat e d with the us e r wherein the token enables the user to 
access one of said plurality of resources ; and 
an application s e rv e r bas e d a_token monitor configured to initiate and terminate 
access to said one of said plurality of application se rv e r resources and 
application s e rver computing ta s k s according to said token , wherein the 
token monitor is located on said application server . 
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2. (Cancelled) 

3. (Cancelled) 

4. (Cancelled) 

5. (Currently Amended) The apparatus of claim 1, wherein the token monitor includ e s 
comprises a criteria evaluato r, wherein the criteria evaluator is configured to notify the token 
monitor when the first sub-token expires that notifi e s th e tok e n monitor if said crit e ria is 
trigg e r e d . 

6. (Currently Amended) The apparatus of claim 5, wherein the criteria evaluator is configured 
to use includ e s a calendar to determine whether the first sub-token has expired and said 
criterion triggered includ e s a sp e cific p e riod including at least ono member s e l e ct e d from th e 
group consisting of a certain day of the week, a c e rtain day of a month, a c e rtain month, a 
certain week, or a certain number of days . 

7. (Currently Amended) The apparatus of claim 5, wherein the criteria evaluator is configured 
to use includ e s a counter to determine whether the first sub-token has expired and said 
criterion trigg e r e d includ e s at l e ast ono number select e d from the group consisting of a 
number of us e r acc e ss, a numb e r of fil e s produc e d, a numb e r of fil e s open e d, a numb e r of 
files saved, and a numb e r of pag e s print e d . 

8. (Currently Amended) The apparatus of claim 5, wherein the criteria evaluator is configured 
to use includ e s a timer to determine whether the first sub-token has expired and said crit e rion 
triggered includ e s at least ono tim e select e d from the group consisting of a time of day, a 
time interval in a day, and a sp e cific time on a specific day . 

9. (Currently Amended) The apparatus of claim 1, further comprising! 

a secondary access database configured to generate a third sub-token using a third policy 
instance, wherein the third sub-token is created after the first sub-token has 
expired and the third sub-token enables the same user to access said one of said 
plurality of resources that provides for tok e n cr e ation wh e n initial allocat e d 
access s e ssions ar e d e pl e t e d . 
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10. (Currently Amended) The apparatus of claim 1, wherein a notification to create a new policy 
instance is sent to the client after the first sub-token has expired furth e r comprising a 
notification component to alort tho us e r when initial allocated access sessions roach a pro 
s e lect e d l e v e l . 

11. (Currently Amended) A method for managing user access to application s e rver a 
resource[[s]] and/or application server computing tasks on a distributed computing syst e m on 
anetwork comprising: 

creating a first policy instance and a second policy instance, wherein the first policy 
instance is created using a first license policy type and a first user specific 
parameter and the second policy instance is created using a second policy type 
and a second user specific parameter on e or more application s e rv e r r e sourc e 
and/or application — s e rv e r — computing — task acc e ss — s e ssions — by a — syst e m 
administrator, wh e r e in said on e or more application s e rv e r r e sourc e and/or 
application s e rver computing task acc e ss s e ssions ar e assign e d to a specific user 
and stor e d on a databas e, wherein the first user specific parameter and the second 
user specific parameter are associated with a same user ; 

verifying the first policy instance and the second policy instance a user resource request 
from the specific us e r against associat e d assign e d application server resourc e 
and/or application server computing task access s e ssions by a license manager; 
and 

generating a token corresponding to said application serv e r resourc e and/or application 
server computing task access s e ssions for tho specific us e r by said license 
manager, 

wherein the token enables the same user to access said resource, and 

wherein the token is generated by: 

creating a first sub-token using the first policy instance, 
creating a second sub-token using the second policy instance, and 
combining the first sub-token and the second sub-token to generate the 
token 

through an application s e rv e r based tok e n manag e r, tho specific user to initiat e d acc e ss of 
application s e rv e r r e sources and/or computing tasks executing on an application 
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sorv e r as well as terminat e access of application — server r e sourc e s and/or 
computing tasks executing on an application server on th e distribut e d computing 
system n e twork . 

12. (Cancelled) 

13. (Cancelled) 

14. (Currently Amended) The method of claim 11, further comprising: 

creating a third sub-token using a third policy instance, wherein the third sub-token is 
created after the first sub-token has expired and the third sub-token enables the 
same user to access the resource 

creating secondary r e source access sessions for token generation wh e n initial resource 
access sessions are d e plet e d . 

15. (Currently Amended) The method of claim 11, wherein the license manager allows access to 
the resource for a period of time and the token only allows access to the resource for a 
portion of the period of time generated enables resourc e access for a segment of a whol e 
resource acc e ss session . 

16. (Currently Amended) The method of claim 15, further comprising: 

generating a new token when the portion of the period of time expires and additional 
time from in the period of time remains access for said segment is depl e t e d and 
additional access r e mains in th e whole r e sourc e acc e ss s e ssion . 

17. (Currently Amended) The method of claim 11, further comprising: 

notifying the sp e cific user when the first sub-token expires initial resourc e acc e ss 

sessions roach a pr e sel e ct e d l e v e l ; and 
renewing, by the sp e cific use r, the first sub-token said initial resourc e access s e ssions . 

18. (Cancelled) 

1 9. (Currently Amended) The method of claim 1 1 , further comprising: 

monitoring the first sub-token bv a token monitor associated with the resource a license 
crit e rion of said tok e n ; and 
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terminated us e r terminating access to the resource when at least one selected from the 
group consisting of the first sub-token and the second sub-token expires said 
license criterion is trigg e r e d . 

20. (New) The apparatus of claim 1, wherein the first policy type is one selected from the group 
consisting of by user, by usage, by client, by time, by date, and by resource. 

21. (New) The apparatus of claim 1, wherein the token monitor is further configured to attempt 
to renew the first sub-token after the first sub-token expires. 

22. (New) The method of claim 11, wherein the first policy type is one selected from the group 
consisting of by user, by usage, by client, by time, by date, and by resource. 
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